Axians Professional Services normally recommends using RADIUS authentication to our customers, but one of our customers uses TACACS. We did some type-approval testing of new Junos release for them recently and had to set up a TACACS+ daemon in the lab to make sure authentication still worked following the upgrade.

Shrubbery.net very helpfully provide a TACACS+ implementation that you can download to a Linux host for this purpose, but the documentation is a bit light on their website, and what you find using Google is naturally somewhat Cisco-specific. So here are some notes on getting a basic setup going with Shrubbery’s tac_plus daemon and Junos. Maybe this will help someone else.